<!--
To change this template, choose Tools | Templates
and open the template in the editor.
-->
<!DOCTYPE html>
<html>
    <head>
        <title></title>
        <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
    </head>
    <body>
        <div>Certifikate premaknemo (razen osebnih) v /etc/apache2/ssl <br />
            Spremenimo datoteko /etc/apache2/sites-available/ssl-auth-client <br />
            Vsebina ssl-auth-client je v značkah code spodaj, spremeni pot do strani prodaja in adm. <br />
            
            mormo omogočt ssl-auth-client in onemogočt default-ssl<br />
            sudo a2dissite default-ssl<br />
            sudo a2ensite ssl-auth-client<br />
            
            To mislm da je blo vse kar sm naredu, naj en proba, če mu slučajn dela, men ne zahteva certifikata...<br />
            <code>
            <!-- Vsebina ssl-auth-client -->
            
            <!--
            <IfModule mod_ssl.c>
<VirtualHost _default_:443>
	ServerAdmin webmaster@localhost
	DocumentRoot /var/www
	Alias /netbeans/ "/home/ep/NetBeansProjects/"
	<Directory />
		Options FollowSymLinks
		AllowOverride None
	</Directory>

	ErrorLog ${APACHE_LOG_DIR}/error.log
	LogLevel warn
	CustomLog ${APACHE_LOG_DIR}/ssl_access.log combined
	
	<Directory /var/www/EP_Trgovina/prodaja>
                Options None
                AllowOverride None

                SSLVerifyDepth 1
                SSLVerifyClient require
               
		SSLRequire %{SSL_CLIENT_S_DN_O} eq "PodutikRecords d.o.o." and %{SSL_CLIENT_S_DN_OU} eq "Prodaja"

                Order allow,deny
                allow from all
        </Directory>

	<Directory /var/www/EP_Trgovina/adm>
                Options None
                AllowOverride None

                SSLVerifyDepth 1
                SSLVerifyClient require
		SSLRequire %{SSL_CLIENT_S_DN_O} eq "PodutikRecords d.o.o." and %{SSL_CLIENT_S_DN_OU} eq "Adm"

                Order allow,deny
                allow from all
        </Directory>	

        SSLEngine 		on
	SSLCertificateFile	/etc/apache2/ssl/webmaster@podutikrecords.com-cert.pem
	SSLCertificateKeyFile	/etc/apache2/ssl/webmaster@podutikrecords.com-key.pem
	SSLCACertificateFile	/etc/apache2/ssl/PodutikRecordsCA-cacert.pem
	SSLCARevocationFile	/etc/apache2/ssl/PodutikRecordsCA-crl.pem

	<FilesMatch "\.(cgi|shtml|phtml|php)$">
		SSLOptions +StdEnvVars
	</FilesMatch>

	BrowserMatch "MSIE [2-6]" \
		nokeepalive ssl-unclean-shutdown \
		downgrade-1.0 force-response-1.0
	BrowserMatch "MSIE [7-9]" ssl-unclean-shutdown
</VirtualHost>
</IfModule>

   
               -->
            </code>
        </div>
    </body>
</html>
